Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Intel Driver' = 'C:\Intel\root\utcsvc.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'explore' = 'C:\Intel\root\Intel.exe'
- '<SYSTEM32>\taskkill.exe' /f /im "utcsvc.exe"
- '<SYSTEM32>\taskkill.exe' /f /im "Intel.exe"
- C:\Intel\root\utcsvc.exe
- C:\Intel\root\Intel.exe
- C:\Intel\root\dat1.cap
- ClassName: '' WindowName: ''
- 'C:\Intel\root\utcsvc.exe'
- 'C:\Intel\root\Intel.exe'